Hacker News new | past | comments | ask | show | jobs | submit login

An SQL injection issue right there.

Edit: to be fair the variable proj_id sounds like it's not taken from untrusted input, but nevertheless a bad idea.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: